CVE-2006-4602
TikiWiki < 1.9.4 - Unauthenticated Arbitrary File Upload via jhot.php
Title source: llmExploitation Summary
EIP tracks 3 public exploits for CVE-2006-4602.
PoCs published by Metasploit, rgod, including Metasploit module exploits/unix/webapp/tikiwiki_jhot_exec.
AI-analyzed exploit summary This Metasploit module exploits a file upload vulnerability in TikiWiki 1.9.4 via the jhot.php script, allowing arbitrary PHP code execution by uploading a malicious file and triggering it via a crafted HTTP request.
Description
Unrestricted file upload vulnerability in jhot.php in TikiWiki 1.9.4 Sirius and earlier allows remote attackers to execute arbitrary PHP code via a filepath parameter that contains a filename with a .php extension, which is uploaded to the img/wiki/ directory.
Exploits (3)
This Metasploit module exploits a file upload vulnerability in TikiWiki 1.9.4 via the jhot.php script, allowing arbitrary PHP code execution by uploading a malicious file and triggering it via a crafted HTTP request.
This exploit targets a file upload vulnerability in TikiWiki <= 1.9 Sirius, allowing remote command execution by uploading a malicious PHP script via the 'jhot.php' endpoint and then triggering it with a crafted HTTP request.
This Metasploit module exploits a file upload vulnerability in TikiWiki 1.9.4 via the jhot.php script, allowing arbitrary PHP code execution by uploading a malicious script and triggering it via a crafted HTTP request.